Originally posted by: Bradtechonline
Originally posted by: n0cmonkey
Originally posted by: Bradtechonline
Well, I just ate up all your bandwidth because you won't disable incoming echo request. Your ping times are in the 1,000's right now. I got enough bandwidth to eat up almost all of yours.
Do yourself a favor, and block it.
First, blocking ICMP requests doesn't solve the bandwidth issue. If the data has made it to the firewall it's already in the pipe. If it's in the pipe, the pipe can be saturated.
Second, ICMP is important and shouldn't be blocked.
What does blocking icmp really do for you? It definitely isn't anything security related...
Whenever I block ping requests, and try to packet a server with it. It does not effect the latency times. I've tried it, but when I try to do the same to an unblocked Ip it increases the latency times. I know this for sure because I messed around with a friends home IP when he was playing games as a joke. I then had him get a firewall, and block it. I then tried to do it, and it would not effect his latency times.
Then it isn't a bandwidth denial of service, just a host issue.
Still, pings aren't evil.